APP: WinComLPD Authentication Buffer Overflow

This signature detects attempts to exploit a known vulnerability against WinComLPD. A successful attack allows attackers to execute arbitrary code with the privileges of the user running the affected application.

Extended Description

Integer overflow in the remote administration protocol processing in Client Software WinCom LPD Total 3.0.2.623 and earlier allows remote attackers to cause a denial of service (crash) via a large string length argument, which triggers memory corruption.

Affected Products

Clientsoftware wincome_mpd_total

References

BugTraq: 27614

CVE: CVE-2008-5159

Short Name
APP:WINCOM-AUTH-BO
Severity
Major
Recommended
False
Recommended Action
Drop
Category
APP
Keywords
Authentication Buffer CVE-2008-5159 Overflow WinComLPD bid:27614
Release Date
05/13/2010
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
Port
TCP/13500
False Positive
Unknown
Vendors

Clientsoftware

CVSS Score

10.0

Found a potential security threat?